How to combat modern crappy websites?

Timo Juhani Lindfors timo.lindfors at iki.fi
Sat Apr 30 14:02:14 UTC 2016


Paul Hänsch <paul at fsfe.org> writes:
> http://plutz.net/chunkchat.cgi

Security tip: the chat seems to be vulnerable to CSRF attacks so any
website can trick your browser into sending chat messages in your name
(or "in your IP address").



More information about the Discussion mailing list